VPN issues with 3 ISPs

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

VPN issues with 3 ISPs

L3 Networker

After upgrading to the pa-850 10.2.13-H3 version, problems started occurring in one of the ISPs. There are 3 ISPs, the first two main ones and the third one as a secondary ISP which manages the VPNS. After the upgrade the configuration was maintained and there were no changes (administrative and metric distance), suddenly they started to fail causing issues in the third ISP in which all VPNs go down.

The administrative distance is changed to 15 and metric 25 The main ISPs are set to AD 10 and metric 25, but it did work VPNs were down again. Until we configured everthing with the same administrative distance and metric , it started working properly.

 

These were the changes made
Disable default route monitoring (monitoring to 1.1.1.1 and 8.8.8.8.8) activated 2-3 weeks ago
Changed the ECMP balancing algorithm from Balanced Round Robin to IP modulo 1-2 months ago

2 REPLIES 2

Cyber Elite
Cyber Elite

Hello,

Check the logs to see what interface the traffic is trying to exit from. I'm guessing here but think it could be a routing issue or a bug. Double check the routes and open a case if everything looks correct.

Regards,

I already opened a case and their recommendation was to create a VPN using the peer IP address. It is weird because it was working with the same configuration previously.

  • 280 Views
  • 2 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!